

Supported protocols are PAP, CHAP MS-CHAPv1, and MS-CHAPv2. Protocol: Select the authentication protocol between the Microsoft AD and the RADIUS server.Confirm shared secret code: Re-enter your shared secret code.This will be the Directory Service admin password. Shared secret code: Enter the same shared secret you created in your RADIUS server.Port: Enter the port number of your RADIUS server that you set at the end of Step 2.– In our example it will be the tool where we have installed the DUOs Auth Proxy Alternatively, you can use a DNS name for your RADIUS server. If you have more than one RADIUS server, you can enter multiple IP addresses of Radius Server, separated by comma (for example, 192.0.0.0, 192.0.0.12).

#Download duo client password
Radius_secret_1 and 2 will be the admin password of the Directory Service. Radius_ip_1 and 2 will get in the Directory Service which is under the DNS address. The Below 3 things you will get from the DUO Application, which we have created in the start named as Radius. Once you click on finish it will opens the Configuration file which will looks like the below. Make sure the Open Authentication Proxy Configuration file is checked. On that EC2 download the DUO Security Authentication Proxy from below link. Make sure you have configured the Directory services in your AWS account, and you have one EC2 Instance to access it through GUI (Active Directory User and Computer) It will create a Radius Application, name it as per your requirements Login to DUO’s admin > go to Application > Click on Protect an application If you have stuck in any step let us know in the comments we will help you. So this will help you to use AWS Client VPN which is very less cost and Configuring DUO’s for MFA.įollow the below simple steps to Configure the same.
#Download duo client license
Most of the time we use OpenVPN and their license for VPN with MFA(Multi-Factor Authentication), which will increase an cost of additional EC2 and OpenVPN license.
